PCI compliance requirement 1: Firewalls

PCI compliance requirement 1: Firewalls

PCI compliance requirement 1: Firewalls

Date: Jun 01, 2009
Diana Kelley and Ed Moyle of Security Curve review PCI compliance requirement 1: "Install and maintain a firewall configuration to protect cardholder data." PCI compliance requirement 1 calls for:

  • "Stateful inspection" devices separating the Internet from the cardholder environment
  • Documented procedures supporting how the firewalls are deployed and maintained

The compliance pros review common PCI questions, including "Is a firewall needed for every store?" and "How should routers be implemented?"

Watch the rest of the PCI compliance videos, as Diana and Ed continue their advice requirement by requirement.

Editor's note: This video is based on PCI DSS version 1.1. For updated information on the changes in PCI DSS version 1.2, see the following:

More on PCI Data Security Standard